Medium · 5.9 Browsers CVE-2026-106383 CVE-2026-106193 CVE-2026-106309 CVE-2026-106268
Google Chrome Stable Update Fixes Eight Vulnerabilities, Including Multiple Use-After-Free Flaws
Google has released Chrome 155.0.8059.39 for desktop, fixing eight vulnerabilities including four use-after-free flaws rated High severity by Chromium, along with information leak and authorization issues.
- Chrome Releases (Stable) vendor · view ↗
- NVD (NIST) database 3d ago · view ↗
- NVD (NIST) database 2d ago · view ↗
- NVD (NIST) database 3d ago · view ↗
- NVD (NIST) database 3d ago · view ↗
- NVD (NIST) database 3d ago · view ↗
- NVD (NIST) database 4d ago · view ↗
- NVD (NIST) database 3d ago · view ↗
- NVD (NIST) database 3d ago · view ↗
AI summary
Google has published a Stable Channel Update for Chrome on desktop, addressing eight distinct vulnerabilities disclosed on October 6, 2026. The fixes are included in Chrome version 155.0.8059.39. The batch includes several use-after-free vulnerabilities in different Chrome components, as well as information disclosure and authorization issues. All eight CVEs share an identical CVSS vector and base score of 8.8, though Chromium's internal severity ratings for individual bugs range from Low to High.
What happened
Google's Chrome Releases (Stable) blog announced an update to the desktop Stable channel that resolves eight vulnerabilities. Four of these are use-after-free (CWE-416) issues located in distinct Chrome components: Media (CVE-2026-106383), Parser (CVE-2026-106193), WebRTC (CVE-2026-106268), WebRTC again (CVE-2026-106357), and Bindings (CVE-2026-106248) — five use-after-free CVEs in total. The remaining three vulnerabilities involve information leaks in Autofill (CVE-2026-106342, CWE-200) and Passwords (CVE-2026-106220, CWE-200), and an incorrect authorization issue in Selection on iOS (CVE-2026-106309, CWE-863). All eight were described as exploitable via a crafted HTML page.
Technical cause
The use-after-free vulnerabilities (CVE-2026-106383, CVE-2026-106193, CVE-2026-106268, CVE-2026-106357, CVE-2026-106248) stem from memory being accessed after it has already been freed, within the Media, Parser, WebRTC, and Bindings components respectively. Chromium rated these as High severity because, per the vendor description, they could allow a remote attacker to execute arbitrary code inside the sandbox via a crafted HTML page. The information leak vulnerabilities (CVE-2026-106342 in Autofill, CVE-2026-106220 in Passwords) are classified as CWE-200 (exposure of sensitive information) and were rated Medium and Low severity respectively by Chromium. CVE-2026-106309, an incorrect authorization flaw (CWE-863) in the Selection component on iOS, was rated Low severity by Chromium and could allow a remote attacker to obtain sensitive information via a crafted HTML page.
Why it matters
The use-after-free issues are notable because successful exploitation could allow an attacker to run arbitrary code inside Chrome's sandbox simply by getting a user to load a crafted HTML page. While sandbox escape would require an additional vulnerability, code execution inside the sandbox is still a meaningful risk, particularly when chained with other flaws. The information leak and authorization issues are lower severity per Chromium's own rating but could still expose sensitive data such as autofill or password-related information to a remote attacker.
Who is affected
All users running Google Chrome on desktop prior to version 155.0.8059.39 are affected by these vulnerabilities. CVE-2026-106309 specifically affects Chrome on iOS prior to the same version.
Affected versions
Google Chrome versions prior to 155.0.8059.39 are affected by all eight vulnerabilities described in this briefing.
Fixes and mitigation
Google has fixed all eight vulnerabilities in Chrome 155.0.8059.39, released via the Stable Channel Update for Desktop. No workarounds are described in the available source material beyond updating to the fixed version.
Recommended action
Update Google Chrome to version 155.0.8059.39 or later. Most installations update automatically on restart; users and administrators should verify their version via the browser's About page and restart the browser to apply the update promptly, given the High-severity use-after-free issues included in this release.
PatchBriefing score
5.9 / 10 · Medium
Official CVSS: 8.8
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Why this score
The PatchWire score of 5.9 reflects a CVSS base score of 8.8 (contributing 4.84 points) combined with additional factors: the vulnerabilities are remotely exploitable without authentication (+0.6) and affect a widely deployed product (+0.5). There is no evidence of known exploitation in the wild, no public exploit code, and a fix is already available, so those factors do not add to the score. Note that all eight CVEs in this advisory share the identical CVSS vector and base score (8.8), despite Chromium's own internal severity ratings for individual bugs ranging from Low to High — this reflects how the CVSS score was assigned at the CVE level rather than per-bug severity nuance.
Affected versions
- ≥ 155.0.8059.39
- patched
- ≥ 155.0.8059.39
- patched
- ≥ 155.0.8059.39
- patched
- ≥ 155.0.8059.39
- patched
- ≥ 155.0.8059.39
- patched
- ≥ 155.0.8059.39
- patched
- ≥ 155.0.8059.39
- patched
- ≥ 155.0.8059.39
- patched
Reported fixes
Google has fixed all eight vulnerabilities in Chrome 155.0.8059.39, released via the Stable Channel Update for Desktop. No workarounds are described in the available source material beyond updating to the fixed version.
How this was built
9 source records were collected, matched and used to prepare the report above.
-
Chrome Releases (Stable) vendor
-
NVD (NIST) database
-
NVD (NIST) database
-
NVD (NIST) database
-
NVD (NIST) database
-
NVD (NIST) database
Revision history
- Published
- Generated
Related
Relevant changes for the stacks you follow.
Choose your stacks, topics and optional WordPress plugins. At 07:00 CEST, matching advisories and releases from the reporting period are grouped into one email.
✓ Choose stacks and topics✓ Change preferences anytime✓ One grouped email